Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
froxlor froxlor vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2021-42325
Froxlor up to and including 0.10.29.1 allows SQL injection in Database/Manager/DbManagerMySQL.php via a custom DB name.
Froxlor Froxlor
1 Github repository
7.5
CVSSv3
CVE-2023-2666
Allocation of Resources Without Limits or Throttling in GitHub repository froxlor/froxlor before 2.0.16.
Froxlor Froxlor
4.8
CVSSv3
CVE-2023-5564
Cross-site Scripting (XSS) - Stored in GitHub repository froxlor/froxlor before 2.1.0-dev1.
Froxlor Froxlor
7.5
CVSSv3
CVE-2018-12642
Froxlor up to and including 0.9.39.5 has Incorrect Access Control for tickets not owned by the current user.
Froxlor Froxlor
9.8
CVSSv3
CVE-2023-3173
Improper Restriction of Excessive Authentication Attempts in GitHub repository froxlor/froxlor before 2.0.20.
Froxlor Froxlor
8.8
CVSSv3
CVE-2023-6069
Improper Link Resolution Before File Access in GitHub repository froxlor/froxlor before 2.1.0.
Froxlor Froxlor
4.9
CVSSv3
CVE-2023-0565
Business Logic Errors in GitHub repository froxlor/froxlor before 2.0.10.
Froxlor Froxlor
8.8
CVSSv3
CVE-2023-0877
Code Injection in GitHub repository froxlor/froxlor before 2.0.11.
Froxlor Froxlor
8.8
CVSSv3
CVE-2023-1033
Cross-Site Request Forgery (CSRF) in GitHub repository froxlor/froxlor before 2.0.11.
Froxlor Froxlor
9.8
CVSSv3
CVE-2016-5100
Froxlor prior to 0.9.35 uses the PHP rand function for random number generation, which makes it easier for remote malicious users to guess the password reset token by predicting a value.
Froxlor Froxlor
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »